Логотип exploitDog
bind:CVE-2024-39148
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-39148

Количество 2

Количество 2

nvd логотип

CVE-2024-39148

2 месяца назад

The service wmp-agent of KerOS prior 5.12 does not properly validate so-called ‘magic URLs’ allowing an unauthenticated remote attacker to execute arbitrary OS commands as root when the service is reachable over network. Typically, the service is protected via local firewall.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-hjfh-3qcg-j4x3

2 месяца назад

The service wmp-agent of KerOS prior 5.12 does not properly validate so-called ‘magic URLs’ allowing an unauthenticated remote attacker to execute arbitrary OS commands as root when the service is reachable over network. Typically, the service is protected via local firewall.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-39148

The service wmp-agent of KerOS prior 5.12 does not properly validate so-called ‘magic URLs’ allowing an unauthenticated remote attacker to execute arbitrary OS commands as root when the service is reachable over network. Typically, the service is protected via local firewall.

CVSS3: 8.1
0%
Низкий
2 месяца назад
github логотип
GHSA-hjfh-3qcg-j4x3

The service wmp-agent of KerOS prior 5.12 does not properly validate so-called ‘magic URLs’ allowing an unauthenticated remote attacker to execute arbitrary OS commands as root when the service is reachable over network. Typically, the service is protected via local firewall.

CVSS3: 8.1
0%
Низкий
2 месяца назад

Уязвимостей на страницу